> ## Documentation Index
> Fetch the complete documentation index at: https://docs.uptimeio.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Two-Factor Authentication

> Protect your account with a code from an authenticator app, and manage your backup codes

Two-factor authentication (2FA) adds a second step to sign-in. After your password, you enter a 6-digit code from an authenticator app on your phone. Even if someone learns your password, they cannot sign in without the code. 2FA is available on every plan.

## Turn on 2FA

<Steps>
  <Step title="Open the Security tab">
    Click **Settings** in the sidebar, then select the **Security** tab.
  </Step>

  <Step title="Start setup">
    Under two-factor authentication, click **Enable 2FA**.
  </Step>

  <Step title="Scan the QR code">
    Scan the QR code with an authenticator app such as Google Authenticator, Authy, 1Password or Microsoft Authenticator. If you cannot scan it, copy the setup code shown under the QR code and enter it in the app manually.
  </Step>

  <Step title="Verify">
    Enter the 6-digit code from your app to confirm that setup works.
  </Step>

  <Step title="Save your backup codes">
    Copy or download your backup codes and keep them somewhere safe. You cannot close the setup window until you have saved them.
  </Step>
</Steps>

When 2FA is on, the Security tab shows **Two-Factor Authentication Enabled**.

## Sign in with 2FA

Sign in with your email and password. UptimeIO then asks for a 6-digit code from your authenticator app. If you do not have your device, use a backup code instead.

## Backup codes

Backup codes let you sign in if you lose your authenticator device. Each code works once.

| Action | How |
| - | - |
| **View Backup Codes** | Click the button to see your codes again. |
| **Regenerate Codes** | Enter a 6-digit code from your app to create a new set. All previous codes stop working, so save the new ones. |

## Turn off 2FA

<Steps>
  <Step title="Open the Security tab">
    Click **Settings**, then **Security**.
  </Step>

  <Step title="Disable">
    Click **Disable 2FA**.
  </Step>

  <Step title="Confirm">
    Enter your **Current Password** and an **Authentication Code or Backup Code**, then click **Disable 2FA**.
  </Step>
</Steps>

<Warning>
  Without 2FA your account is more exposed to unauthorized access. Keep it on unless you have a strong reason to turn it off.
</Warning>

## Change your password

You can also change your password on the **Security** tab. Use at least 8 characters. A mix of upper and lower case letters, numbers and special characters is recommended.


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.